Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
3559 results
MadeYouReset_Tester preview

MadeYouReset_Tester

GitHubayushghatkar8080/madeyoureset_tester

A Python script that checks if a web server is vulnerable to MadeYouReset (CVE-2025-8671) — an HTTP/2 DoS attack that bypasses Rapid Reset…

exploitationnetwork-securitypenetration-testing+2
4
2 months ago
CVE-2026-0257 preview

CVE-2026-0257

GitHubtushargurav28/cve-2026-0257

Palo Alto Networks PAN-OS contains an authentication bypass caused by flaws in the GlobalProtect portal and gateway, letting attackers establish…

authenticationcryptographyexploitation+5
32 months ago
Apple-Remote-Crash-Tool-CVE-2018-4407 preview

Apple-Remote-Crash-Tool-CVE-2018-4407

GitHubanonymouz4/apple-remote-crash-tool-cve-2018-4407

Crashes any macOS High Sierra or iOS 11 device that is on the same WiFi network

exploitationnetwork-securitypenetration-testing+3
47 years ago
CVE-2025-26466 preview

CVE-2025-26466

GitHubrxerium/cve-2025-26466

The OpenSSH client and server are vulnerable to a pre-authentication DoS attack between versions 9.5p1 to 9.9p1 (inclusive) that causes memory and…

exploitationnetwork-securityvulnerability-analysis+1
510 months ago
bash-tls-reneg-attack preview

bash-tls-reneg-attack

GitHubxdldcg/bash-tls-reneg-attack

A bash script that attempts to flood a server with TLS renegotiations by using the openssl client. See CVE-2011-1473 and CVE-2011-1473 for details.

exploitationnetwork-securitypenetration-testing+1
411 years ago
log4jScan preview

log4jScan

GitHubsinakeshmiri/log4jscan

simple python scanner to check if your network is vulnerable to CVE-2021-44228

exploitationnetwork-mappingpenetration-testing+2
44 years ago
CVE-2026-41285-OpenBSD-v6daemons-go-brrr preview

CVE-2026-41285-OpenBSD-v6daemons-go-brrr

GitHubrat5ak/cve-2026-41285-openbsd-v6daemons-go-brrr

One IPv6 ND option with length zero. One missing check. Daemon walks backward and lives in the loop. Reported to OpenBSD, fixed, CVE assigned.

exploitationfuzzingnetwork-security+2
3 months ago
CVE-2012-1803 preview

CVE-2012-1803

GitHubx3roxismygood/cve-2012-1803

Critical vulnerability in Siemens RuggedCom ROS devices allowing attackers to derive a hidden factory account password from the device MAC address…

exploitationhardware-iot-securitynetwork-security+3
2 months ago
CVE-2021-26258 preview

CVE-2021-26258

GitHubzwclose/cve-2021-26258

Files and tools for CVE-2021-26258

exploitationfirmware-analysismalware-analysis+3
33 years ago
CUPS-CVE-2024-47176 preview

CUPS-CVE-2024-47176

GitHubrhyru9/cups-cve-2024-47176

Exploit for CVE-2024-47176 targeting CUPS printing service vulnerability. Enables remote code execution and privilege escalation on affected…

exploitationnetwork-securitypenetration-testing+3
2 months ago
CVE-2005-1794Scanner preview

CVE-2005-1794Scanner

GitHubinitroot/cve-2005-1794scanner

Scanner for network for CVE-2005-1794.

exploitationnetwork-securitypenetration-testing+2
24 years ago
CVE_2023_44487-Rapid_Reset preview

CVE_2023_44487-Rapid_Reset

GitHubmadhusudhan-in/cve_2023_44487-rapid_reset

A comprehensive Python testing tool for CVE-2023-44487, the HTTP/2 Rapid Reset vulnerability. This enhanced version provides granular control over…

exploitationnetwork-securitypenetration-testing+3
116 days ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubcorelight/cve-2021-41773

A Zeek package which raises notices for Path Traversal/RCE in Apache HTTP Server 2.4.49 (CVE-2021-41773) and 2.4.50 (CVE-2021-42013)

exploitationincident-responseintrusion-detection+3
14 years ago
CVE-2017-3143 preview

CVE-2017-3143

GitHubsaaph/cve-2017-3143

Exploit for TSIG bypass vulnerabilities in Bind (CVE-2017-3143) and Knot DNS (CVE-2017-11104)

dns-analysisexploitationnetwork-security+2
17 years ago
CVE-2020-0796 preview

CVE-2020-0796

GitHubran-sama/cve-2020-0796

Lightweight PoC and Scanner for CVE-2020-0796 without authentication.

exploitationnetwork-securitypenetration-testing+2
17 months ago
spb preview

spb

GitHubiknowjason/spb

Shortest Path Bridging (SPB-Mac) vulnerability testing scripts. Used in a network pentest to enumerate a new vuln (CVE-2016-2783) in Avaya VOSS…

exploitationnetwork-securitypenetration-testing+3
27 years ago
SSHUsernameBruter-SSHUB preview

SSHUsernameBruter-SSHUB

GitHubjoeblacksecurity/sshusernamebruter-sshub

Fully functional script for brute forcing SSH and trying credentials - CVE-2018-15473

exploitationnetwork-securitypassword-attacks+2
17 years ago
CVE-2025-22870 preview

CVE-2025-22870

GitHubjoshuaprovoste/cve-2025-22870

Proof-of-concept for CVE-2025-22870 demonstrating HTTP proxy bypass in vulnerable versions (<0.36.0) of golang.org/x/net/http/httpproxy. Exploits…

exploitationnetwork-securityvulnerability-analysis+1
21 year ago
Previous1234…198Next